nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2020-20139 CVE-2020-20139
MEDIUM
Flexmonster Pivot Table & Charts 2.7.17 - 'Remote JSON' Reflected XSS
Record summary
CVE-2020-20139 has a selected CVSS score of 6.1 (medium); EIP currently links 1 catalogued exploit.
Description
Cross Site Scripting (XSS) vulnerability in the Remote JSON component Under the Connect menu in Flexmonster Pivot Table & Charts 2.7.17.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBFlexmonster Pivot Table & Charts 2.7.17 - 'Remote JSON' Reflected XSSExploitDB exploitby Marco NappiNot analyzed1 file
References
2packetstormsecurity.com
https://packetstormsecurity.com/files/160604/Flexmonster-Pivot-Table-And-Charts-2.7.17-Cross-Site-Scripting.html